骑士人才系统越权修改简历(demo演示)

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: 权限控制不严格 ### 详细说明: wap/pwersonal/wap_user.php中 判断是否登录的代码如下 ``` if (intval($_SESSION['uid'])=='' || $_SESSION['username']==''||intval($_SESSION['utype'])==1) { header("Location: ../wap_login.php"); //如未登录则跳转,若登录则elseif语句 } elseif ($act == 'index') { $smarty->cache = false; $user=wap_get_user_info(intval($_SESSION['uid'])); $smarty->assign('user',$user); $resume_info=get_userprofile(intval($_SESSION['uid'])); if(empty($resume_info)) { header("Location: ?act=make_resume"); } else { $resume_info['age']=date("Y")-$resume_info['birthday']; $smarty->assign('resume_info',$resume_info); $smarty->display("wap/personal/wap-user-personal-index.html"); } } ``` /wap/pwersonal/wap_user.php中 ``` elseif($act == "resume_jobs_save") { $smarty->cache = false; $_POST=array_map("utf8_to_gbk",$_POST); $setsqlarr['intention_jobs']=trim($_POST['intention_jobs'])?trim($_POST['intention_jobs']):exit("请选择期望职位");...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息